Publishing details
Changelog
nss (2:3.35-2ubuntu2.15) bionic-security; urgency=medium
* SECURITY UPDATE: Crash when handling empty pkcs7 sequence
- debian/patches/CVE-2022-22747.patch: check for missing signedData
field in nss/gtests/certdb_gtest/decode_certs_unittest.cc,
nss/lib/pkcs7/certread.c.
- CVE-2022-22747
* SECURITY UPDATE: Free of uninitialized pointer in lg_init
- debian/patches/CVE-2022-34480.patch: rearrange frees in
nss/lib/softoken/legacydb/lginit.c.
- CVE-2022-34480
-- Marc Deslauriers <email address hidden> Wed, 06 Jul 2022 07:25:51 -0400
Builds
Package files